Техническая информация
- '<SYSTEM32>\wbem\wmic.exe' /output:%TEMP%\81477781703.txt bios get version
- '<SYSTEM32>\wbem\wmic.exe' /output:%TEMP%\81477781703.txt bios get serialnumber
- '%TEMP%\bedghcebeb.exe' 2,9,4,9,6,4,6,0,1,2,1 LUdFOzcyLTgfLVJTOUxAPjkqIC5MRFJOS0lFRT49MB4uQkBPS0NANzUzMh8tOkU7NywaL09QTkJMP0tZRT49MzQwHiZPPExSP1JeU1FKNGRrbmw0Ly5xcXQlQDxNRydUTk4sP0dMJUNKQE8fLUJKQD9CQ0A3IC5CMDsrLicxLSo...
- <SYSTEM32>\wbem\AutoRecover\C8463ECBE33BC240263A0B094E46D510.mof
- %TEMP%\tmp4.tmp
- %TEMP%\tmp5.tmp
- %TEMP%\81477781703.txt
- <SYSTEM32>\wbem\AutoRecover\23BDE61F1F4FACE17E9B0C01F2A1FD9B.mof
- %TEMP%\tmp3.tmp
- %TEMP%\nsv2.tmp\rckunlc.dll
- %TEMP%\bedghcebeb.bebe
- %TEMP%\bebe.zip
- %TEMP%\bedghcebeb.exe
- %TEMP%\nsv2.tmp\ZipDLL.dll
- %TEMP%\tmp5.tmp
- %TEMP%\81477781703.txt
- %TEMP%\tmp3.tmp
- %TEMP%\tmp4.tmp
- %TEMP%\81477781703.txt
- ClassName: '#32770' WindowName: ''